summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorAna Krivokapic <akrivoka@redhat.com>2013-11-06 13:29:09 +0100
committerPetr Viktorin <pviktori@redhat.com>2014-09-09 10:36:00 +0200
commit712cb047e457e94174901043560f6da83f6b5a34 (patch)
tree0a1c3885ef97d47c9985a43cc6636b94fff6597e
parentf8fc3bbcd84e12d4f918fe05910c9e664fc0b07c (diff)
downloadfreeipa-712cb047e457e94174901043560f6da83f6b5a34.tar.gz
freeipa-712cb047e457e94174901043560f6da83f6b5a34.tar.xz
freeipa-712cb047e457e94174901043560f6da83f6b5a34.zip
Remove internaldb password from password.conf
Remove internaldb password from password.conf after switching over to client certificate authentication. The password is no longer needed. https://fedorahosted.org/freeipa/ticket/4005 Reviewed-By: Petr Viktorin <pviktori@redhat.com>
-rw-r--r--ipaserver/install/cainstance.py3
1 files changed, 3 insertions, 0 deletions
diff --git a/ipaserver/install/cainstance.py b/ipaserver/install/cainstance.py
index 2a50ad091..c237c7464 100644
--- a/ipaserver/install/cainstance.py
+++ b/ipaserver/install/cainstance.py
@@ -1355,6 +1355,9 @@ class CAInstance(service.Service):
installutils.set_directive(caconfig,
'internaldb.ldapconn.secureConn', 'true', quotes=False,
separator='=')
+ # Remove internaldb password as is not needed anymore
+ installutils.set_directive(self.dogtag_constants.PASSWORD_CONF_PATH,
+ 'internaldb', None)
def uninstall(self):
if self.is_configured():